CVE-2005-3716

The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public credentials that cannot be changed, which allows attackers to obtain sensitive information.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:utstarcom:f1000_wi-fi_firmware:2.0:*:*:*:*:*:*:*
cpe:2.3:h:utstarcom:f1000_wi-fi:-:*:*:*:*:*:*:*

History

13 Feb 2024, 16:48

Type Values Removed Values Added
CPE cpe:2.3:h:utstarcom:f1000_wi-fi_handset:2.0:*:*:*:*:*:*:* cpe:2.3:o:utstarcom:f1000_wi-fi_firmware:2.0:*:*:*:*:*:*:*
cpe:2.3:h:utstarcom:f1000_wi-fi:-:*:*:*:*:*:*:*
CVSS v2 : 5.0
v3 : unknown
v2 : 5.0
v3 : 7.5
First Time Utstarcom f1000 Wi-fi
Utstarcom f1000 Wi-fi Firmware
CWE NVD-CWE-Other CWE-798
References () http://lists.grok.org.uk/pipermail/full-disclosure/2005-November/038834.html - Vendor Advisory () http://lists.grok.org.uk/pipermail/full-disclosure/2005-November/038834.html - Broken Link, Vendor Advisory
References () http://secunia.com/advisories/17629 - Vendor Advisory () http://secunia.com/advisories/17629 - Broken Link, Vendor Advisory
References () http://www.securityfocus.com/bid/15476 - () http://www.securityfocus.com/bid/15476 - Broken Link, Third Party Advisory, VDB Entry
References () http://www.vupen.com/english/advisories/2005/2472 - () http://www.vupen.com/english/advisories/2005/2472 - Broken Link

Information

Published : 2005-11-21 11:03

Updated : 2024-02-13 16:48


NVD link : CVE-2005-3716

Mitre link : CVE-2005-3716

CVE.ORG link : CVE-2005-3716


JSON object : View

Products Affected

utstarcom

  • f1000_wi-fi_firmware
  • f1000_wi-fi
CWE
CWE-798

Use of Hard-coded Credentials